채용
At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.
Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.
Principal Engineer – Secure Code DevelopmentF5 BIG-IP Platform Security Team Role Overview
Drive secure coding practices across the F5 BIG-IP platform by conducting code reviews, identifying security vulnerabilities, and collaborating with development teams to integrate security throughout the software development lifecycle.
Key Responsibilities Secure Code Review & Analysis
-
Conduct comprehensive security code reviews to identify vulnerabilities and weaknesses in BIG-IP product code
-
Perform manual and automated code analysis using static (SAST) and dynamic (DAST) analysis tools
-
Review code for compliance with secure coding standards (OWASP, CWE/SANS Top 25, CERT)
-
Analyze security implications of design decisions in application delivery, traffic management, and security modules
-
Collaborate with BIG-IP development teams to integrate security best practices into the SDLC
-
Develop and maintain security coding guidelines, standards, and checklists tailored for F5 products
-
Define security requirements and controls for system designs, APIs, and authentication/authorization mechanisms
-
Champion secure-by-design principles across engineering teams
-
Mentor junior engineers on security best practices and code review techniques
-
Analyze vulnerability reports, CVEs, and security advisories to assess impact and recommend fixes
-
Track security findings through resolution using Bugzilla or similar tracking systems
-
Stay current with latest security threats, attack vectors, and defensive technologies relevant to application delivery and network security
-
Evaluate and recommend new security tools and methodologies to improve code security posture
-
Leverage AI-powered security tools for enhanced vulnerability detection and code analysis
Required Qualifications Experience
- 12+ years of hands-on experience in secure code review and secure software development
- Proven track record identifying and remediating security vulnerabilities in production code
- Experience integrating security into agile software development processes
Technical Skills
- Programming Languages: Python, Java, C/C++ (proficiency required)
- Secure Coding: Deep understanding of secure coding principles, OWASP Top 10, CWE/SANS Top 25
- Static Analysis Tools: Sonar Qube, Checkmarx, Fortify, Coverity, Semgrep
- Dynamic Analysis Tools: Burp Suite, OWASP ZAP, Acunetix
- Code Review Methodologies: Manual code review, peer review, automated scanning integration
- Source Code Management: Git, GitHub, GitLab, Bitbucket
- SDLC Integration: CI/CD security gates, GitHub Actions, Jenkins
Core Competencies
- Strong analytical and problem-solving skills with attention to detail
- Excellent written and verbal communication skills for technical and non-technical audiences
- Ability to articulate security risks and recommended mitigations to development teams
- Collaborative mindset with ability to influence engineering culture
Preferred Qualifications
- Familiarity with F5 BIG-IP architecture, TMOS, i Rules/i Apps development
- Understanding of application delivery, load balancing, SSL/TLS processing, and WAF functionality
- Experience with network protocols and security features (HTTP/S, DNS, IPsec, authentication)
- Knowledge of cryptographic implementations and common pitfalls
- Experience with API security, authentication/authorization frameworks (OAuth, SAML, JWT)
- Understanding of product security concepts: Secure Boot, FIPS compliance, code signing
- Familiarity with threat modelling methodologies (STRIDE, PASTA, OCTAVE)
- Experience with container security and Kubernetes for BIG-IP containerized deployments
- Knowledge of scripting for security automation (Bash, PowerShell)
- Familiarity with vulnerability assessment and penetration testing techniques
- AI Security Skills: Experience using AI-powered code analysis tools or LLM-assisted security reviews
Certifications
- GIAC Secure Software Programmer (GSSP)
- Certified Secure Software Lifecycle Professional (CSSLP)
- CEH (Certified Ethical Hacker)
- OSCP (Offensive Security Certified Professional)
Education
- Bachelor's degree in Computer Science, Information Security, Software Engineering, or related field
The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.
Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or@myworkday.com).Equal Employment Opportunity
It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
총 조회수
0
총 지원 클릭 수
0
모의 지원자 수
0
스크랩
0
비슷한 채용공고

Senior Backend Engineer (Rust)
RingCentral · Spain Valencia

Software Developer III
Bandwidth · Romania - Iași

SAP S/4HANA Order to Cash (SD) - Senior Consultant
EY ·

Senior Backend Engineer - AI Platform (f/m/d)
Contentful · London, England, United Kingdom

Senior Software Engineer
Thermo Fisher · Hyderabad, India
F5 Networks 소개

F5 Networks
PublicA multi-cloud application services and security company that specializes in application security, performance, and delivery.
5,001-10,000
직원 수
Seattle
본사 위치
$2.8B
기업 가치
리뷰
3.8
10개 리뷰
워라밸
3.2
보상
4.0
문화
4.1
커리어
3.4
경영진
2.8
72%
친구에게 추천
장점
Supportive and collaborative team environment
Good benefits and competitive compensation
Flexible work arrangements
단점
Poor management and communication issues
High-pressure and stressful work environment
Work-life balance challenges
연봉 정보
29개 데이터
Junior/L3
Mid/L4
Junior/L3 · Data Analyst
0개 리포트
$83,000
총 연봉
기본급
-
주식
-
보너스
-
$70,550
$95,450
면접 경험
1개 면접
난이도
4.0
/ 5
소요 기간
14-28주
면접 과정
1
Application Review
2
Recruiter Screen
3
Technical Phone Screen
4
Onsite/Virtual Interviews
5
Final Round Interview
자주 나오는 질문
Coding/Algorithm
System Design
Behavioral/STAR
Technical Knowledge
Network/Infrastructure Concepts
뉴스 & 버즈
Tell me about the Product development and Work culture at F5 Networks, Hyderabad
·
4d ago
·
2
·
1
JPMorgan Chase & Co. Issues Positive Forecast for F5 (NASDAQ:FFIV) Stock Price - MarketBeat
MarketBeat
News
·
5d ago
Tell me about the Product development and Work culture at F5 Networks, Hyderabad
Hi, I am a Sr DevOps person who will be joining as SSE at F5 soon. I am interested to know more about the Company vision, Products, Work culture, WLB, travelling, and growth options at the Hyderabad office. Thanks \#F5 #Hyderabad Exp: 9+
·
5d ago
·
2
·
3
F5 Inc. stock (US3156161024): Why does its multi-cloud security edge matter more now for U.S. invest - AD HOC NEWS
AD HOC NEWS
News
·
1w ago